Redhat
17,638 known vulnerabilities
Top Products
A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have th
A flaw was found in http-proxy-agent, prior to version 2.1.0. It was discovered http-proxy-agent passes an auth option t
IBM Resilient SOAR 40 and earlier could disclose sensitive information by allowing a user to enumerate usernames.
A potential stack overflow via infinite loop issue was found in various NIC emulators of QEMU in versions up to and incl
A flaw was found in 3scale’s APIcast gateway that enabled the TLS 1.0 protocol. An attacker could target traffic using t
A vulnerability was found in the Quay web application. Sessions in the Quay web application never expire. An attacker, a
A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1. An attacker could connect to the n
A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when al
A privilege escalation flaw was found in OpenShift builder. During build time, credentials outside the build context are
It has been discovered in redhat-certification that any unauthorized user may download any file under /var/www/rhcert, p
A flaw was found in the fabric8 kubernetes-client in version 4.2.0 and after. This flaw allows a malicious pod/container
A flaw was found in libnbd 1.7.3. An assertion failure in nbd_unlocked_opt_go in ilb/opt.c may lead to denial of service
A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corres
A flaw was found in gnutls. A use after free issue in client_send_params in lib/ext/pre_shared_key.c may lead to memory
A flaw was found in gnutls. A use after free issue in client sending key_share extension may lead to memory corruption a
A race condition was found in the Linux kernels implementation of the floppy disk drive controller driver software. The
A flaw was found in the Linux kernel in versions prior to 5.10. A violation of memory access was found while detecting a
A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A spec
An integer overflow flaw was found in libtiff that exists in the tif_getimage.c file. This flaw allows an attacker to in
In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting
A flaw was found in libtiff. Due to a memory allocation failure in tif_read.c, a crafted TIFF file can lead to an abort,
A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by Im
A flaw was found in ImageMagick in coders/webp.c. An attacker who submits a crafted file that is processed by ImageMagic
A flaw was found in ImageMagick in MagickCore/visual-effects.c. An attacker who submits a crafted file that is processed
A flaw was found in Keycloak 12.0.0 where re-authentication does not occur while updating the password. This flaw allows
A flaw was found in ansible-tower. The default installation is vulnerable to Job Isolation escape allowing an attacker t
A flaw was found in keycloak in versions prior to 13.0.0. The client registration endpoint allows fetching information a
In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potential
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and
A NULL pointer dereference flaw was found in the Linux kernel's GPU Nouveau driver functionality in versions prior to 5.
A flaw was found in grub2 in versions prior to 2.06. Setparam_prefix() in the menu rendering code performs a length calc
A flaw was found in grub2 in versions prior to 2.06. The option parser allows an attacker to write past the end of a hea
A flaw was found in grub2 in versions prior to 2.06. The cutmem command does not honor secure boot locking allowing an p
A flaw was found in grub2 in versions prior to 2.06. Variable names present are expanded in the supplied command line in
A flaw was found in grub2 in versions prior to 2.06. During USB device initialization, descriptors are read with very li
A flaw was found in grub2 in versions prior to 2.06. The rmmod implementation allows the unloading of a module used as a
A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Sec
A flaw was found in Red Hat Satellite. The BMC interface exposes the password through the API to an authenticated local
A flaw was found in Red Hat 3scale API Management Platform 2. The 3scale backend does not perform preventive handling on
There is a vulnerability in the linux kernel versions higher than 5.2 (if kernel compiled with config params CONFIG_BPF_
A privilege escalation flaw was found in openshift4/ose-docker-builder. The build container runs with high privileges us
A flaw was found in the Undertow AJP connector. Malicious requests and abrupt connection closes could be triggered by an
A flaw was found in PostgreSQL in versions before 13.2. This flaw allows a user with SELECT privilege on one column to c
A flaw was found in Undertow. A regression in the fix for CVE-2020-10687 was found. HTTP request smuggling related to CV
A flaw was found in the OpenShift Installer before version v0.9.0-master.0.20210125200451-95101da940b0. During installat
A vulnerability was found in all versions of Keycloak Gatekeeper, where on using lower case HTTP headers (via cURL) an a
Keybase Desktop Client before 5.6.0 on Windows and macOS, and before 5.6.1 on Linux, allows an attacker to obtain potent
A flaw was found in podman before 1.7.0. File permissions for non-root users running in a privileged container are not c
A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack.
A vulnerability was found in keycloak in the way that the OIDC logout endpoint does not have CSRF protection. Versions s
Frequently Asked Questions
How many CVEs affect Redhat?
Redhat has 17,638 CVE records in our database, including 1817 critical and 6954 high severity vulnerabilities. 43 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Redhat vulnerabilities?
Redhat has 1817 critical severity (CVSS 9.0+) and 6954 high severity (CVSS 7.0-8.9) vulnerabilities. 43 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Redhat vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Redhat products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Redhat Vulnerabilities
CyberStrike scans your infrastructure for Redhat vulnerabilities and provides real-time remediation guidance.
Get Started